|
|||
Rule General Information |
---|
Release Date: | 2013-09-05 | |
Rule Name: | PHP gd library - imageRotate() Information Leak Vulnerability (CVE-2008-5498) | |
Severity: | ||
CVE ID: | ||
Rule Protection Details |
---|
Description: | Array index error in the imageRotate function in PHP 5.2.8 and earlier allows context-dependent attackers to read the contents of arbitrary memory locations via a crafted value of the third argument (aka the bgd_color or clrBack argument) for an indexed image. | |
Impact: | Remote code execution | |
Affected OS: | Windows, FreeBSD, Linux | |
Reference: | CVE-2008-5498 ExploitDB:7646 SecurityFocusBID:33002 |
|
Solutions |
---|
Update vendor's patch. |